KI-Tools Changelog Hub
Die neuesten Updates von 36 KI-Tools auf einen Blick
Die Suche und Timeline zeigen 138 von 2.109 erfassten Updates. Der Hub lädt nur eine aktuelle Auswahl pro Tool.
Diese Woche
Release v0.63.0
6. Oktober 2026
- •fix(cli): display retry progress indicator during connection recovery (#28340) by @amelidev in https://github.com/google-gemini/gemini-cli/pull/29468
- •Changelog for v0.61.0-preview.1 by @gemini-cli-robot in https://github.com/google-gemini/gemini-cli/pull/29469
- •Changelog for v0.61.0 by @gemini-cli-robot in https://github.com/google-gemini/gemini-cli/pull/29472
- •fix(cli): distinguish missing MCP enablement config from malformed JSON by @jesussamuel-byte in https://github.com/google-gemini/gemini-cli/pull/29446
- •fix(cli): restore paused stdin after capability detection by @ugorla-dev in https://github.com/google-gemini/gemini-cli/pull/29487
- •fix(core): bound tool output size and optimize memory lifecycle in long-running agent loops by @diegogodinezr in https://github.com/google-gemini/gemini-cli/pull/29451
- •fix(core): remove invalid diff.external override by @urielefrenvirtusa in https://github.com/google-gemini/gemini-cli/pull/29467
- •chore(release): bump version to 0.63.0-nightly.20260923.gf50ba8608 by @gemini-cli-robot in https://github.com/google-gemini/gemini-cli/pull/29471
- •Changelog for v0.62.0-preview.0 by @gemini-cli-robot in https://github.com/google-gemini/gemini-cli/pull/29470
- •fix(core): clean up temporary directory when background shell execution exits by @jesussamuel-byte in https://github.com/google-gemini/gemini-cli/pull/29437
- •fix(acp): resolve session before config initialization and avoid same-minute filename collisions by @jesussamuel-byte in https://github.com/google-gemini/gemini-cli/pull/29463
- •fix(core): align policy redirection gates, path validation, and workflow parsing by @DavidAPierce in https://github.com/google-gemini/gemini-cli/pull/29506
- •fix(auth): prevent infinite auth loop from file contention, headless keyring, and supervisor state drops (#28341) by @villahernandez-coder in https://github.com/google-gemini/gemini-cli/pull/29448
- •fix(core): enable autonomous plan execution in non-interactive mode by @urielefrenvirtusa in https://github.com/google-gemini/gemini-cli/pull/29539
- •fix(core): disable truncation when maxChars <= 0 in formatTruncatedToolOutput by @diegogodinezr in https://github.com/google-gemini/gemini-cli/pull/29542
v1.18.35
6. Oktober 2026
- •Added canonical redirects and JSON and Markdown data formats for agent-readable stats.
- •xAI tool results now include supported images, while unsupported image formats are skipped. (@Jaaneek)
- •docs(web): add Fledge Alpha Free to Zen docs (#52895)
- •@jm0ney337:
- •docs(ecosystem): add opencode-supabase to ecosystem plugins (#49848)
- •fix(opencode): bump @ai-sdk/xai to 3.0.139 so tool-result images reach xAI (#53549)
v18.7.0
6. Oktober 2026
- •Fixed interrupted runs so assistant message boundaries are emitted reliably, allowing subscribers to persist and recover the interrupted turn.
- •Added
getOAuthCredentialProvider()to resolve login aliases, such asopenai-codex-device, to the provider where their credentials are stored. - •Fixed Ultrafast service-tier billing and usage accounting: GPT-6 Astra now applies its published premium rates—6× on the OpenAI API and 8× included usage on Codex—and is counted toward the premium-request limit.
- •Fixed Vertex AI authentication on Windows when credentials are created with
gcloud auth application-default login. - •Fixed selecting Cursor accounts by email through
auth.accountPoliciesand/session pin; newly refreshed and existing accounts now retain the account email. - •Added Mistral Large 4 with reasoning support, image input, a 1M-token context window, and preview pricing.
- •Added configurable thinking levels from low through maximum for MiniMax-M3.1-Flash-Preview; because the model always reasons, requests that disable thinking use the low level.
- •Added Google Antigravity pricing and model support for Claude Opus 5.5 and Sonnet 5.5.
- •MiniMax Token Plan providers (
minimax-codeandminimax-code-cn) now use MiniMax's recommended Anthropic-compatible API for model requests and login key validation. - •Google Antigravity now exposes Claude Opus 5.5 and Sonnet 5.5 once each, with selectable low, medium, and high thinking levels.
- •Added the correct published pricing for GPT-6 Astra's Ultrafast service tier: a 6× multiplier on the OpenAI API and an 8× multiplier on the Codex card.
- •Added last-chance consumption of eligible banked Codex and Claude resets expiring within five minutes when auto-redeem is enabled, even with low usage or reserved credits.
- •Added inline rendering of agent-generated SVG diagrams, charts, and mockups, with theme-aware colors and a
tui.renderSvgsetting to disable it. - •Added automatic chart generation for numeric tables, configurable with
tui.autoGraph(always,smart, oroff). The agent now chooses suitable visual formats—including charts, Mermaid, SVG, tables, or prose—based on the content. Charts and this guidance apply to the main TUI session only, not to subagents, print, RPC, or ACP. - •Added first-class JSON and JSONL querying to the
readtool with?q=<jq-filter>, including in-process filtering, raw or compact output, and offset/limit pagination for efficient large-file access.
v0.3.292
6. Oktober 2026
- •Added
agent_idto theassistantandusermessages a subagent produces; it equals thetask_idon that subagent's task events and stays the same when the subagent is resumed - •Added
parent_task_idtotask_startedevents andbackground_tasks_changedentries, naming the subagent task that launched a task - •Added
run_idto background task events andorigin.runIdto task notifications, so a host can tell a resumed task's runs apart - •Added typed
sectionsandnotesto theListAgentstool'stool_use_result, so hosts can list agents without parsing its text - •Added
recipient_kindto SendMessagetool_useinputs on assistant messages, and their top-levelapproveis now always a boolean, so hosts no longer infer them from the raw input - •Added two optional fields to the
ReadNotificationstool output:read_at, when the tool read the session's queued notifications, andarrived_aton each notification, when it reached the session - •Fixed subagents with a declared auto permission mode having their tool calls decided by the auto-mode classifier instead of the canUseTool callback when auto mode is unavailable
- •Changed
background_tasks_changedfor a finishing background task to arrive after that task'stask_updatedandtask_notification - •Changed
canUseTooloptions to carrysuppressAlwaysAllowRule: truefor connector tools that an organization set to require approval, so hosts can hide their "always allow" choice - •Updated to parity with Claude Code v2.1.292
Claude Code 2.1.292
6. Oktober 2026
- •Added
--marketplace <source>toclaude plugin install: adds the marketplace if needed, under the same policy checks asclaude plugin marketplace add, then installs the plugin from it - •Added an
effortparameter to the Agent tool, so Claude runs a sub-agent at the effort level you ask for - •Added
CLAUDE_CODE_OVERLOADED_RETRY_BASE_DELAY_MSenvironment variable to set a longer base delay for the backoff when retrying an overloaded (529) request - •Added
prompt.autocomplete, an event a mod hooks to add its own rows to the prompt box's autocomplete list - •Added prompt caching to
$.model.completefor mods:promptandsystemtake blocks of text, andcache: trueon a block caches the request up to it - •Added workflow agents to the
agent.spawnmod hook, with their run and index, so a mod can refuse them - •Fixed subagent definitions with
permissionMode: autoentering auto mode when auto mode is unavailable (disabled by settings, circuit breaker, or a model that doesn't support it) - •Fixed sandboxed commands being able to read the staged file copies of
/ultrareviewuploads under~/.claude/seed-admin - •Fixed a managed sandbox read-deny path (and user ones beside it) that appears or re-points mid-session not dropping project grants inside it or ending credential injection from files it covers
- •Fixed a notebook or PDF read on macOS and Windows being able to return a file outside what was approved, through a link swapped in mid-read
- •Fixed a tampered on-disk cache of server-managed settings being able to switch off or unseat the built-in policy plugin while the settings fetch failed
- •Fixed
rm -rfon the 8.3 short name or another alternate Windows spelling of the home folder or a drive not being treated as removing it - •Security: Fixed PreToolUse hook approvals and auto mode bypassing the permission prompt for file reads from network (UNC) paths
- •Fixed a skill's or slash command's
allowed-toolsrule coming back in a later turn when you leave auto mode or plan mode partway through that turn - •Fixed
NO_PROXYbeing ignored for Claude Code's own API requests (sign-in, policy, feedback, artifacts) whenHTTPS_PROXYis set - •Fixed an MCP tool with a name longer than 128 characters making every request fail; that tool is now left out and an MCP error names it
- •Fixed
claude plugincommands such asmarketplace addandinstallrunning before an organization's managed settings had loaded on a first run - •Fixed one-shot
claude -pand Agent SDK runs stopping a background command 5 seconds after the final result, and one-shotclaude -pruns dropping a scheduled wakeup; both are now waited for - •Fixed plan mode not being restored when resuming a session from the
claude --resumesession picker or with/resume - •Fixed saved scheduled tasks created after
/resume,/branchor/clearnever firing, and saved tasks ignoring later creates and deletes after two writes to the tasks file milliseconds apart - •Fixed a background session's
/loopsilently stopping when the session's process restarted (for example after a crash), because its pending wakeup was lost - •Fixed Grep and Glob reporting no matches when the file or folder they were given could not be read; Claude now retries once or tells you
- •Fixed the Read tool returning only the first entry, with no error, when a PDF's
pageswas a list such as "6,9,15"; it now returns an error saying to read each page or range separately - •Fixed @-mentioned text files over 256KB being left out silently: Claude is now told the file's size and to read it in portions
- •Fixed the usage limit alert repeating once per background agent when agents failed on a limit that had already stopped the main conversation
- •Fixed Remote Control viewers seeing an empty subagent pane for background subagents in sessions hosted by the desktop app or an IDE
- •Fixed cross-session delivery notices showing two sessions with similar names as one recipient, and the expiry notice blaming the desktop app when a terminal session let the message lapse
- •Fixed Send now in the desktop app ending the subagent a turn was waiting on when another message was already queued
- •Fixed
/bug,/shareand/feedback <text>starting over after Ctrl+O or Ctrl+Z while a report was being sent, and closing as cancelled after it had been sent - •Fixed
/remote-envreplacing your saved default environment when you pressed Enter right away: the list now opens on your default, and no row has a check mark when no default is in effect - •Fixed some pasted text reaching Claude as typed text when several pastes overlapped in one prompt
- •Fixed vim mode leaving the cursor past the end of a line, j/k losing their column on shorter lines, and
f/t/F/T/;/,jumping to, or deleting up to, a match on another line of the prompt - •Fixed
/add-dirpath box letting Shift+Enter or a paste add a line break, and treating fast-typed "tab", "up" or "down" as those keys - •Fixed fast typing, input-method text and decomposed accents being dropped while a prompt footer row was selected, and
!leaving the row selected - •Fixed fullscreen mode sending a full-screen clear on every window resize and Ctrl+L when iTerm2 is detected, which may be what filled iTerm2's scrollback with stale pages
- •Fixed a spurious "could not be examined" note for @-words that name no file when a Read deny rule is set and the working directory is under a symlink
- •Fixed "instruction file not loaded" lines going stale or missing after
/cdor a permission change, and added a transcript line when a nested one isn't loaded - •Fixed a compaction summary that repeated
/nameletting Claude invoke a skill that is reserved for the user - •Fixed Write, Edit, NotebookEdit and LSP rows, and single Read, Grep and Glob rows, hiding why a mod denied the call: the row now shows the reason
- •Fixed a cloud session showing a turn that never ended when its worker was stopped just as the turn finished
- •Fixed cloud sessions with a large transcript sometimes asking for a permission again after it was approved
- •Fixed scheduled tasks and other queued notifications being lost in cloud sessions when a message was retried or edited while Claude was reading them
- •Fixed cloud sessions forgetting the thinking setting chosen in the client when the session's container restarted
- •Fixed Cowork cloud sessions saying a proxy blocked artifacts when Anthropic couldn't confirm the organization's settings
- •Fixed plugins whose hooks module makes many
$.statecalls through one const taking minutes to load or validate - •Fixed
claude plugin validatelisting a matcher or state value for a hooks module that the engine reads from elsewhere - •Fixed
claude plugin validatelisting a$.statevalue read through a top-levelvarthat was declared again or reassigned; such a module is now refused - •Fixed a plugin's served
$method restarting the hook origin, which could run a guard hook with a.catchabove it again without end - •Fixed plugin interface calls made while the plugin hooks worker restarts running without the hooks other plugins put on them
- •Fixed a mod's
config.set,state.set,env.setoragent.spawnhook that denies after callingnext(e)being answered as a refusal: the hook is now reported as failed, by name - •Fixed
/theme, the/configTheme menu and the first-run theme step saving a theme before a plugin'sconfig.sethook was asked - •Fixed a plugin's
tool.checkhook answering allow running a tool that requires your answer (a question, a plan approval) without showing its dialog - •Fixed a mod's start-up prompt, command or subagent being queued a second time when the hooks worker was replaced
- •Fixed a mod's hook that called
next(e)and then failed while the turn was interrupted letting the call through; the call is now rejected - •Fixed a plugin's prompt drop or setting deny being ignored when its reason was longer than 4,096 characters
- •Fixed an organization's plugin being unloaded on its own reload, or after another plugin crashed, when it returned a
$name that a user-installed mod had added; the mod is now unloaded instead - •Fixed tool calls made while the plugin hooks worker restarts being answered without the plugins' permission hooks
- •Fixed plugin
tool.callhooks seeing some tool calls before misnamed parameters were repaired; a hook now sees the arguments the tool will run with - •Fixed a mod's guard hook with a
.catchbeing skipped silently for calls another mod's hook makes beneath the guard's own$call; its.catchis now asked - •Improved startup of
claude -pand SDK sessions: the first turn no longer waits for HTTP and SSE MCP servers to answerresources/list - •Improved rendering speed of long bulleted or numbered replies: they stream, resize and re-open in the transcript (ctrl+o) much faster
- •Improved Ctrl+C draft recovery: a cleared prompt now stays reachable with Up after a slash command or a sent message
- •Improved hook output handling:
<system-reminder>tags written in a hook's output are escaped before they reach Claude - •Improved tool input handling: Grep accepts
file_pathforpath, and Write, WebFetch and Read ignore a few stray parameters instead of failing the call - •Improved the steps shown when a marketplace declared in a settings file has a name that looks like an official Anthropic marketplace
- •Improved sandbox auto-allow: with strict sandbox mode set in user, managed or --settings settings, an interpreter command with an env var prefix like
FOO=bar python3 app.pyruns unprompted - •Improved the Artifact tool's listing: Claude now sees how many published artifacts you have and can list up to 200 at once instead of 50
- •Improved cloud sessions after a restart: Claude is now told which stopped background agents it can resume by id
- •Improved the Claude in Chrome message in claude.ai cloud sessions when the browser can't be reached: Claude is now told it may continue with alternatives if the user prefers
- •Improved the /focus tip: it now invites you to try focus view mid-turn and shows how to switch back
- •Improved startup with local (stdio) MCP servers that ignore the newer protocol check: after one slow connect they are remembered for 7 days and connected the older way without the wait
- •Changed local (stdio) MCP server connections to negotiate protocol version 2026-07-28 by default on every install, including Bedrock, Vertex and Foundry;
MCP_PROTOCOL_NEGOTIATION=legacyopts out - •Changed
claude plugin test: a failedexpectinside a hook the test registered, or a stub answer the engine refuses, now fails the test instead of passing silently - •Changed usage limit messages to write claude.ai settings links with https:// so terminals and apps can make them clickable
- •Changed scheduled and Run now routine runs to publish a new artifact only you can see without asking for approval; artifacts that request connectors or other access still ask
- •Changed agent names to allow at most 256 characters: a longer one is rejected, and a skill's or a plugin file's
namelonger than that is ignored - •[Cloud sessions] Fixed routine runs occasionally staying listed as running for hours after they had finished
- •[Cloud sessions] Fixed editing or duplicating a routine turning off its push notifications when the routine had no saved notification setting
- •[Cloud sessions] Fixed SVG, HEIC, TIFF and other less common image files failing to attach; they now attach as regular files
- •[Cloud sessions] Fixed approval prompts offering "Always allow" for connector tools that an organization set to require approval; the choice had no effect
- •[Remote Control] Fixed the first message of a new Remote Control session started from claude.ai/code accepting only images; it now accepts PDFs and other files like later messages
- •[Claude Tag] Added an Edit button to the Allowed domains card on a channel's Configure page, so Enterprise admins can open the access bundle that sets the channel's domains
- •[Claude Tag] Fixed replies sent in a Slack thread while Claude was still on its first request there being held until that request finished, or missed when sent seconds apart
v18.6.3
6. Oktober 2026
- •
Agent.withdrawUndeliveredQueuedMessages()replaceswithdrawLiveSteering()and returns{ steering, followUp }: it also takes back queued input already dequeued for the next model call, which the aborted run then neither records nor reports inagent_end(#14179 by @andrebrait) - •Added
Agent.setOnModelCallSystemPrompt, called with the exact system prompt each model call is built from (#14338 by @will-bogusz) - •
SessionInitEntry.systemPromptholds the system prompt blocks as sent; session files written earlier keep one joined string (#14338 by @will-bogusz) - •Image token estimates now use the catalog's
imageTokens()formula with its OpenAI Responses wire rule; values are unchanged (#14286 by @will-bogusz). - •Fixed the context count and auto-compaction trigger pricing every snapcompact archive frame at Opus's high-res rate, which overcounted Codex and Gemini sessions and could re-trigger compaction right after compacting (#14291 by @will-bogusz)
- •Fixed native (OpenAI) compaction being refused as over the context window in sessions with many screenshots. Images were counted as about 1,200 tokens when deciding to compact but 12,000 when checking whether the compaction request fits; both checks now estimate images from their actual dimensions, and a request is no longer refused when only the image estimate pushes it over the window (#14260 by @H4vC).
- •Fixed OpenAI and Codex Remote Compaction V2 dropping your recent messages instead of keeping them next to the compaction summary (#14247 by @will-bogusz)
- •Fixed the failed V2 remote compaction warning claiming a V1 fallback on Codex, where V1 does not run (#14245 by @will-bogusz)
- •Fixed Anthropic native compaction being rejected with
Invalid signature in thinking block(or silently dropping the summarized thinking) on models with preserved thinking (#14251 by @will-bogusz) - •Added per-model
compat.statefulResponsesto enable or disable stored Responses chaining (previous_response_idwithstore: true) for one endpoint without the official-only request fields thatcompat.officialEndpointimplies (#13686 by @alphastorm). - •Added Snowflake Cortex with browser OAuth, token refresh, PAT environment authentication, and streaming Claude/OpenAI models with local tool execution (#14507 by @jorgoose).
- •
AuthStorage.health.check()acceptsexcludeProvidersto skip credentials of providers the caller does not serve (#14234 by @will-bogusz) - •Reduced CPU spent on thinking-loop detection while streaming long reasoning (#14284 by @abilliontokens).
- •Added
recordAffinity: falseto credential resolution options, selecting as the session would without pinning the choice to that session (#14512 by @will-bogusz) - •Codex native-lane steering rejections (
unsupported_native_inflight_message) now classify as retryable from their error text alone, matching the provider's own classification, andAIError.isCodexSteerRejection()identifies them so the agent retry can stay on the same model (#14242 by @alphastorm)
Remote control for local agents
6. Oktober 2026
- •Remote Control is on by default for everyone except Enterprise organizations.
- •Download the Cursor iOS app and sign in. Computers on your account appear in the app automatically. Tap your computer in the app and approve your pairing request in the Cursor desktop app. Your local agents appear in a list. Tap one to see what it's doing or send it a message.
- •Remote Control for local agents in the Cursor iOS app
- •Remote control doesn't move your agents anywhere. It keeps running on your computer, and the app connects to it. Your computer needs to stay on and online for remote control to work.
- •To stop your computer from sleeping while you're away, turn on "Keep this computer awake" under Remote Control in Cursor's desktop settings. Your computer needs to be plugged in with the lid open.
- •Remote control is on by default, except for Enterprise organizations. Enterprise admins can turn it on in Org settings > Security and identity > Remote control.
- •Remote control doesn't require cloud agents to work.
- •Remote control is available today in the Cursor iOS app.
v0.3.290
6. Oktober 2026
- •Added an optional
offsetfield to the WebFetch tool input for reading on through long pages - •Fixed failed Claude in Chrome tool calls dropping the result's
_meta: when the result has one,tool_use_resultis now{ content, _meta }, as for other MCP tools - •Fixed deny and ask rules missing
toolAliasestools when written with a wildcard (Bash*), a match-all pattern (Bash(**), also on the mapped name), or an input field also indisallowedTools - •Fixed a user message sent again under the same
uuidbeing replayed (--replay-user-messages) while the first copy still waited for its turn; its replay now comes when a turn takes it - •Fixed
includePartialMessagesstreams leaving a message withoutmessage_stopwhen the stream was cut, interrupted or fell back to non-streaming - •Changed
user_message_uuid,user_message_uuidsandresume_reasonto also be set on a turn a restarted worker resumes from a permission answer or from tool calls still in flight - •Updated to parity with Claude Code v2.1.290
v1.0.4
6. Oktober 2026
- •Tool patterns and `--no-mcp`:
--toolsand--exclude-toolsaccept*patterns, for example--tools read,codemode,'mcp__radius__*'keeps only one MCP server's tools.--toolsnow keeps MCP tools unless an entry starts withmcp__, and--no-mcpturns off MCP for one run. See Tools and MCP tools. - •Codemode persists images:
tools.read()on an image file now gives back an image block thatimage()can show. See Call tools. - •Added
*patterns to--toolsand--exclude-tools, for example--tools read,codemode,'mcp__radius__*' - •Added
--no-mcpto disable the built-in MCP support for one run - •Fixed syntax highlighting losing colors after the first line of multiline strings and comments in fenced code blocks (#10143)
- •Fixed codemode scripts not receiving images from
read:tools.read()now resolves to an image block for image files, whichimage()shows (#10251) - •Fixed MCP OAuth sign-in failing with
invalid_redirect_urion servers with OpenID Connect client registration, such asmcp.modem.dev: pi now registers as a native client (#10493) - •Fixed
--toolsremoving MCP tools, which leftpi --tools codemodewithout any MCP servers.--toolsnow keeps MCP tools unless an entry starts withmcp__ - •Fixed MCP session shutdown returning while a server was still connecting, leaving its transport open until the server answered or timed out (#10249)
- •Fixed system prompt rules and the skills hint naming tools hidden by
prepareLoadout. Hidden tools are left out of the rules, the skills hint names no tool when the file reader is hidden, andcodemodeshows each tool's prompt guidelines with its declaration;ToolLoadoutgainsgetPromptGuidelines()(#10343) - •Fixed Bedrock requests that fail with
The pending stream has been canceledafter a stalled HTTP/2 connection not being retried automatically (#10379) - •Fixed codemode scripts that patch built-ins (for example
Array.prototype.toJSON = ...) crashing pi and leaving the tool call unsettled. Built-ins are now frozen before the script runs, so such patches have no effect (#10444)
openclaw 2026.10.1-beta.1
5. Oktober 2026
- •Sessions and memory: preserved usage across registry changes, delivered worker attachments from remote workspaces, prevented queued cancellations and transcript aliases from stalling active turns, kept continuation signatures aligned, and migrated embedding caches in bounded batches with oversized-row reporting. (#164217, #164219, #163708, #164230, #164251, #164289, #164287, #164303) Thanks @vincentkoc.
- •Replies and media: restored inline playback for local videos, replaced rejected media links with useful errors, kept Telegram progress updates free of preview cards, and fixed speech-only replies when reasoning is enabled. (#164137, #163727, #164285, #164256) Thanks @ivan-magda, @obviyus, and @Twilight-Networks.
- •Updates and Doctor: improved serving-verdict recovery guidance, kept repairs working with read-only managed config, removed repeated config, backup, metadata, and pnpm-root probes, reported successful cleanup as progress without corrupting JSON output, and treated a still-starting Gateway as a warning. (#164193, #161924, #164235, #162259, #164182, #164186, #164183, #164184, #163477, #164261, #162236, #164312) Thanks @DonnieFi, @JD8855122, @Patrick-Erichsen, and @waynegault.
- •Windows workspaces and browser startup: fixed empty and nested Windows worktree creation, improved Linux Chromium discovery, and automatically started Playwright Chromium on ARM64. (#164202, #164249, #163510, #163281) Thanks @ly85206559, @jesse-merhi, and @obviyus.
- •Cloud workers and Crabbox: surfaced the real cloud-worker failure, enforced Linux leases, overlapped worker-bundle downloads with bootstrap, removed unrelated warm-image cleanup waits, and prevented slow reads or unsupported backends from stranding workers. (#164129, #164187, #164128, #164231)
- •Plugins, Codex, and MCP: preserved Bun package-import capture, reduced prerelease metadata requests, kept expired remote-exec approvals from poisoning auth profiles, restored node policy hooks, synchronized MCP forms/files/context, and routed background skill reviews through Workshop proposals. (#164223, #164185, #164237, #164270, #164277, #164292)
- •Added inactive-foundation support for incognito actor memory and Codex history routing. (#164224)
- •Migrated existing agents to local Claws. (#162329) Thanks @Patrick-Erichsen.
- •Reduced Sessions-board and state-path overhead by serving prepared facts, reusing card payloads per store revision, moving lifecycle mutations off the main thread, and retaining canonical state handles. (#164218, #164301, #163815, #164110)
- •Preserved plugin lifecycle fences for cancelled queued turns and retained investigated failures in ready PR reviews. (#164247, #164253) Thanks @vincentkoc.
- •Honored agent-local model aliases in status summaries. (#164126, #164115) Thanks @ooiuuii and @obviyus.
- •Kept Gateway tests on the selected Bun runtime and ran native Codex subagent checks in Docker. (#164276, #164163)
- •Left webhook config migrations to Doctor and avoided Nextcloud Talk webhook migration for unconfigured channels.
- •
channel-webhook-listener-config-inputsbegan warning on 2026-09-26; migrate tolegacyWebhookfor canonical listener config. See/gateway/doctor/config-migrations#channel-webhook-listeners. - •
session-manager-sync-persistencebegan warning on 2026-10-01; await the matching Async-suffixed SessionManager method and its rewrite commit. See/plugins/sdk-migration/how-to-migrate#await-session-transcript-persistence.
0.160.1
5. Oktober 2026
- •Preserve
SYSTEMROOT,TEMP, andTMPwhen launching remote stdio MCP servers with explicitly configured remote environment variables, allowing Unix hosts to retain the Windows executor's startup environment. - •#51121: Backport Windows remote MCP environment preservation to 0.160.
v1.0.3
5. Oktober 2026
- •Azure Foundry Chat Completions — The
azureprovider (renamed fromazure-openai-responses) now also serves Foundry Chat Completions deployments, starting withazure/deepseek-v4-pro. See Azure OpenAI. - •Codemode images saved to files —
image()also writes each image to a temp file and names the path in the result, so later turns can copy or move generated images. See Generate images. - •Renamed the Azure provider from
azure-openai-responsestoazure. Rename the provider key inauth.json(or run/loginagain), inmodels.json, and insettings.json(defaultProvider,enabledModelspatterns, andmodelThinkingLevelskeys). Sessions that used the old provider fall back to another model when resumed, and their prompt cache is not reused. TheAZURE_OPENAI_*environment variables are unchanged (#9714 by @jsanter27) - •Added Azure Foundry Chat Completions deployments, starting with
azure/deepseek-v4-pro(#9645, #9714 by @jsanter27) - •Codemode
image()now also saves each image to a temp file and names the path in the result, so later turns can copy or move generated images (#10310) - •Output files (full text of truncated tool output, binary MCP resources, codemode images) are now readable only by the user
- •
Home/Endnow always move the editor cursor to the line start/end; fullscreen transcript top/bottom moved toCtrl+Home/Ctrl+End, which no longer move the editor cursor (#10314) - •Fixed subscription logins such as Sign in with ChatGPT failing with
refresh_token_invalidatedafter a request was cancelled during an OAuth token refresh - •Fixed codemode failing for the rest of a session after a pnpm global update removed the running install, and added a restart hint when errors occur after pi was updated or removed on disk (#10439)
- •Fixed interactive sessions reporting a
read EIOorsetRawMode EIOcrash (and asking to run /bug) when the terminal went away, e.g. after closing the window or resuming a suspended pi in a closed terminal
Shared Windows Codex home, semicolon CSV viewer, and Copilot security hardening
5. Oktober 2026
- •Semicolon CSV viewer — automatically detects semicolon-separated CSV files and formats them into structured tabular columns in the built-in data viewer
- •Per-machine desktop notifications — toggle desktop notifications on or off independently on each computer in Settings
- •Expanded agent and account support — launch Qoder CLI China and Qwen Code, link standalone GLM Coding Plans without ZCode, manage separate OpenCode and Devin account profiles, continue Antigravity IDE history in new CLI chats, and pass max or ultra effort to newer Codex worker models
v18.6.1
4. Oktober 2026
- •Fixed native OpenAI context compaction for sessions containing many screenshots, preventing image-size estimates from incorrectly causing compaction requests to be rejected.
- •Fixed compatibility with Command Code DeepSeek and other DeepSeek-family models by preserving the reasoning context required for warm OpenAI Responses sessions and correctly handling incomplete DSML tool-call wrappers in visible output.
- •Fixed waiting for subagent follow-up messages: responses now appear as background jobs that can be waited on or canceled, and are delivered only once.
- •Improved
/switchautocomplete so model and role suggestions use the same relevance ordering as the model picker, including support for@rolealiases. - •Fixed concurrent
skill://searches blocking other filesystem operations and delaying subagent artifact publication. - •Fixed compatibility checks for browser relays from other OMP versions and added guidance for resolving stale connection-refused errors.
- •Fixed follow-up hashline edits being incorrectly rejected after earlier edits shifted anchored lines, while continuing to reject genuinely stale line references.
- •Fixed
pi.exec()reporting exit code0when a process was terminated by a timeout or signal; terminated processes now report code-1. - •Fixed
/collabguests being unable to respond to setting-change approval and tool-issue report consent prompts. - •Fixed follow-up hashline edits being rejected as anchored on lines "never displayed" after an earlier edit shifted those lines, when the replacement carries the anchored content; genuinely stale line numbers are still rejected (#14254 by @abilliontokens).
- •Fixed long
/btwanswers in Tern being clipped with no way to scroll:/btwnow answers in the scrollable BTW history sheet (#14331 by @H4vC) - •Fixed
/btwanswers longer than 4 KiB being cut off with[…truncated]once they finished (#14331 by @H4vC) - •In Tern, Esc puts the BTW history sheet away while an answer keeps streaming (
/btwreopens it);xcancels the answer (#14331 by @H4vC) - •Fixed concurrent searches through host-provided filesystem callbacks so they no longer starve other asynchronous filesystem operations, and ensured canceled searches release promptly.
- •Fixed the Space key in the Git diff pane so it stages or unstages the focused hunk instead of scrolling or acting on the wrong change.
v1.0.2
4. Oktober 2026
- •Sampling by thinking level —
samplingParamsByThinkingLevelinmodels.jsonsets sampling parameters such astemperatureandtop_pfor each thinking level on OpenAI-compatible APIs. See Configure sampling by thinking level. - •Added
samplingParamsByThinkingLeveltomodels.jsonfor per-thinking-level sampling parameter overrides on OpenAI-compatible APIs. See Configure sampling by thinking level (#9776 by @mrexodia)
Reliable chat cancellation, Mac screenshot drops, and standalone SSH runtime
4. Oktober 2026
- •Standalone SSH runtime — remote SSH hosts can run an optional bundled Orca runtime without requiring Node, npm, or build tools installed on the remote machine, with full support for standard Windows accounts
- •Mac screenshot drops for Claude Code — drag temporary macOS screenshot thumbnails directly into local terminals or the new-workspace composer, automatically passing readable images to Claude Code
- •Annotate page element shortcut — trigger element inspection and annotation in the built-in browser using a customizable keyboard shortcut
v1.0.1
3. Oktober 2026
- •Nix flake —
nix run github:earendil-works/pi/stableruns the latest release, andnix profile add github:earendil-works/pi/stableinstalls it. See Install pi. - •Project overrides for MCP servers —
.pi/mcp.jsonand/mcpcan enable, disable, or change the exposure of a user-level server for one project. See Configure servers. - •MCP Client ID Metadata Documents —
oauth.clientRegistration: "cimd"lets authorization servers allow pi by its document URL instead of dynamic registration. See Authenticate with OAuth. - •Tool renderers for any tool —
pi.registerToolRenderer()draws calls to tools that are not registered yet, such as MCP tools in resumed sessions. See Tool rendering. - •Cloudflare Clef classifiers —
@cf/cloudflare/clefand@cf/cloudflare/clef-flashare usable from codemode scripts and extensions. See Use classifier models. - •Added a copy key (
app.message.copy, defaultctrl+x) to OAuth sign-in screens in/login,/mcp, and/mcp login, which copies the sign-in URL when the browser cannot be opened or the wrapped link cannot be selected. - •Added
oauth.clientRegistration: "cimd"for MCP servers, which identifies pi with its Client ID Metadata Document on pi.dev instead of dynamic client registration, so authorization servers can allow pi by URL (#10302) - •Added project overrides for user-level MCP servers: a
.pi/mcp.jsonentry withoutcommandorurlsets onlyenabled,exposure, andtoolExposureof the user-level server, and/mcpcan enable or disable a server for the current project (#10277) - •Added Cloudflare's Clef and Clef Flash classifier models to
cloudflare-workers-ai, usable from codemode scripts and extensions (#10316 by @ndisidore, #10322 by @RealAlexandreAI) - •Added
pi.registerToolRenderer(), which chooses how calls to a tool are drawn, including tools that are not registered (#10285) - •Added a Nix flake for macOS and Linux:
nix run github:earendil-works/pi/stableruns the latest release, andnix profile add github:earendil-works/pi/stableinstalls it. See Install pi (#9137) - •
pi updateon global npm installations now recommends migrating to the managed installation from the pi.dev installer, which pins all dependencies. - •Anthropic tools added or redefined mid-conversation are now defined inline in the conversation, so redefining a tool under the same name keeps the prompt cache instead of resending the full tool list.
- •Fixed installations resolving vulnerable
brace-expansion5.0.9 by pinningbrace-expansion5.0.12 as a direct dependency (GHSA-q2hr-2g5m-vwhr, GHSA-qhr7-859c-m2p7, GHSA-6j4f-fj2g-mc7p) (#10288) - •Fixed a trailing comma in
--modelsadding an extra model to the model cycle (#10334)
openclaw 2026.9.8
3. Oktober 2026
- •Release notes — formatted for people, with expandable sections.
- •Changelog — plain Markdown for AI agents and tools.
- •npm package: https://www.npmjs.com/package/openclaw/v/2026.9.8
- •registry tarball: https://registry.npmjs.org/openclaw/-/openclaw-2026.9.8.tgz
- •integrity:
sha512-G+JkNUhtpDE3cXR4AEi2NyyG9fqI/T2WUSl8ZnR8AATH8Dh1kC3qYFL7wwPoZtgHiP/cszA86PEiE0PDysxb9Q== - •release SHA:
fc23bc864e4553c2d215e479eeec47b67a0bf943 - •full release CI report: https://github.com/openclaw/releases/blob/main/evidence/2026.9.8/release-evidence.md
- •release publish: https://github.com/openclaw/openclaw/actions/runs/37089852299
- •npm preflight: https://github.com/openclaw/openclaw/actions/runs/37046778498
- •full release validation: https://github.com/openclaw/openclaw/actions/runs/37045896743
- •plugin npm publish: https://github.com/openclaw/openclaw/actions/runs/37090141905
- •plugin ClawHub submission: https://github.com/openclaw/openclaw/actions/runs/37090144556; public artifact verification follows successful release-parent completion
- •plugin ClawHub bootstrap: not needed
- •OpenClaw npm publish: https://github.com/openclaw/openclaw/actions/runs/37087759921/attempts/1
- •Telegram integration checks: waived by the release owner for 2026.9.8 (source QA, Package Acceptance, published-package E2E); not run.
CLI v0.233.0, Desktop v0.190.0: Resume with a message, Script output trimming, plus model window, custom model, and app fixes
3. Oktober 2026
- •New features: Message when resuming a session - Text after a session id in a resume command now runs in that session
- •Improvements: Script output trimming - Script results too long to keep in full now preserve their start and end
- •Bug fixes: Cut-off replies now retry - A reply that ends early on some models now retries instead of showing cut-off output
- •Bug fixes: Connector list actions - Actions in the connectors list no longer overlap a connector's category tag
- •Bug fixes: Requests over the model window - Droid now shrinks an oversized request before sending it and stops retries that cannot shrink
- •Bug fixes: Custom model error guidance - A broken custom model entry now explains the failure and leaves your other models working
- •Bug fixes: Callout spacing in messages - Callouts in a Droid message keep their padding instead of sitting against the edge
- •Bug fixes: Resuming a paused computer - A Droid Computer resuming after a pause no longer reports a failed sign-in
- •Bug fixes: Malformed tool arguments - A tool call with unreadable arguments now returns a correctable error instead of running with invented values
- •Bug fixes: Oversized message handling - A message larger than the model window is now refused with its size instead of silently trimmed
- •Bug fixes: Session history after reload - Reloading a session keeps its earliest messages above the newest page
v0.23.1
2. Oktober 2026
- •restore release tests and refresh required readiness check (#5278) (730deb4)
- •Review mode: final candidate
- •Intended release: patch, 0.23.1
- •Minimum required release type: patch
- •Versioning verdict: compatible
- •28 files changed (+622/-42): release automation, test fixtures, integration/example tooling, and release metadata.
- •The clean candidate contains current main
a575a6e637feb9aea1b591237b007dd4991ddfbaplus only six release-owned metadata files. Package, lockfile, manifest, source version and API baseline agree on 0.23.1. Snapshot sourceb31b9f8d13d49142a64f8873f2cc2ee40441a795is an ancestor of the candidate. - •Relative to v0.23.0, SDK runtime source changes only its version string. API snapshot content, dependencies, Python support and persisted schemas are unchanged.
- •First PyPI publication of the 0.23 series includes earlier migration requirements
- •Risk: 🟢 LOW with the previously reviewed migration paths. Users upgrading from 0.22.3 receive the 0.23.0 behavior changes as well as this patch.
- •Evidence: PyPI has neither 0.23.0 nor 0.23.1. The 0.23.0 release assessment in #5226 covers strict tools, approval restoration, encrypted history, resource limits, voice defaults and provider changes; this candidate does not alter those runtime paths.
- •Files:
CHANGELOG.md,src/agents/version.py; unchanged 0.23.0 runtime contracts assessed in #5226. - •Action: Carry forward the 0.23.0 migration guidance in the 0.23.1 announcement, particularly explicit strict-tool parameters, fresh legacy approvals, trusted encrypted-history import, resource-limit overrides and the explicit prior voice-model override.
- •Release checks recover without changing package behavior
- •Risk: 🟢 LOW. Test-loop initialization and required-check ownership are corrected while publication authorization remains intact.
openclaw 2026.8.35
2. Oktober 2026
- •GPT-6.1 Sol support: add the current Sol model across OpenAI routing, discovery, reasoning, harness, and Reef guard-model boundaries. (#161400, #162955)
- •Safer updates and recovery: preserve plugin settings, prevent duplicate Gateways, handle pnpm package updates without terminal failures, and retain plugin inventory through migration. (#160344, #160193, #161920, #161485) Thanks @EndeavorPioneer, @grtninja, @alkor2000, @xilopaint, and @aniruddhaadak80.
- •Reliable agent completion: preserve complete delegated and CLI answers, release suspended child capacity, recover full cron output, and prevent failed requests from consuming steered questions. (#162843, #162368, #160520, #162439) Thanks @zyz619963502zyz, @holgergruenhagen, @armstrongsam25, @davidcittadini, @jayzhou2309, and @obviyus.
- •Security and ownership hardening: keep secret-store kinds stable during rotation, restore admitted secret-egress execution, and retain explicit cron tool allowlists while repairing stale automatic snapshots. (#160926, #160760, #162432) Thanks @zachisfine, @yetval, @VACInc, and @obviyus.
- •Channel and integration reliability: repair Gmail and IMAP watchers, Matrix direct mappings, Telegram progress, remote MCP startup, and managed llama.cpp startup on clean Windows hosts. (#161503, #160413, #161727, #161546, #162376, #163093) Thanks @obviyus, @kazuyuki-eguchi, @Ayushdevo, @addyCooks, @VACInc, @Patrick-Erichsen, and @RomneyDa.
- •Performance and UI continuity: bound model-catalog waits, reduce Codex fleet heap pressure, and keep saved WebChat replies visible across history refresh races. (#161132, #162912, #162763) Thanks @jayzhou2309, @Flakedict, @obviyus, @609NFT, and @VACInc.
- •Extended-stable release preparation: align OpenClaw and every publishable official plugin to 2026.8.35 while preserving the 2026.8.34 publication contract.
- •Model compatibility: add GPT-6.1 Sol to the branch-native OpenAI and Reef compatibility owners. (#161400, #162955)
- •Update safety: preserve incompatible-plugin settings through recovery, keep retained plugin records during migration, avoid pnpm terminal failures, and carry the existing Gateway lock through container/direct startup. (#160344, #161485, #161920, #160193) Thanks @EndeavorPioneer, @aniruddhaadak80, @alkor2000, @xilopaint, and @grtninja.
- •Agent delivery: recover uncapped cron replies, preserve complete CLI subagent answers, honor skipped announcements, retain detached transcripts, release suspended child slots, and keep failed requests from replacing earlier questions with a steer. (#160520, #162843, #161542, #161091, #162368, #162439) Thanks @jayzhou2309, @zyz619963502zyz, @holgergruenhagen, @armstrongsam25, @davidcittadini, and @obviyus.
- •Cron and tools: bound thinking-catalog hydration, repair stale automatic tool snapshots without widening explicit allowlists, and deliver manual runs after their creating turn ends. (#161132, #162432, #162780) Thanks @jayzhou2309, @Flakedict, and @obviyus.
- •Sessions and tool results: reject malformed session targets, preserve spawned working directories, project deeply nested MCP results safely, and keep remote MCP bundles working in native sessions. (#161533, #162308, #160825, #162376) Thanks @wangmiao0668000666, @Takhoffman, @hpyhandsome, and @Patrick-Erichsen.
- •Channels: recover Gmail transient binds, bound IMAP backlog processing, restore Matrix direct mappings, and restore Telegram progress when hooks suppress previews. (#161503, #160413, #161727, #161546) Thanks @obviyus, @kazuyuki-eguchi, @Ayushdevo, @addyCooks, and @VACInc.
- •Runtime reliability: prevent redaction stalls, cancel stale thinking-catalog waits, pass the responding agent to TTS model selection, stop durable worker retries from freezing hosts, reduce Codex fleet heap use, and install the required Visual C++ runtime after a managed llama.cpp launch failure. (#161089, #161319, #161454, #160812, #162912, #163093) Thanks @Baumus, @drakeo338, @aounakram, @RileyJJY, @aniruddhaadak80, @obviyus, @609NFT, and @RomneyDa.
- •Secrets and sandboxing: retain secret entry kinds during value rotation and repair read-only copied skills without escaping their confined roots. (#160926, #162304, #162295) Thanks @zachisfine and @yetval.
v0.23.0
2. Oktober 2026
- •mcp: add configurable MCP listing page limits (#5133) (9a21ab1)
- •sandbox: add opt-in Docker removal protection (#5116) (ae5803f)
- •sandbox: allow configuring memory consolidation turns (#5135) (daa1bcb)
- •sessions: add an opt-in encrypted history scan budget (#5118) (a2fdb94)
- •avoid awaiting cleanup during coroutine closure (#5163) (719c4e7)
- •ci: update and group CodeQL actions together (#5262) (f76153c)
- •ci: validate release source before building distributions (#5220) (2747c1c)
- •core/extensions: respect sensitive trace capture for model metadata (#5129) (88b722d)
- •core: bound agent tool streaming callback backlogs (#5106) (f23da76)
- •core: isolate nested agent tool state across fresh runs (#5123) (46cc8d8)
- •core: preserve closed parent constraints in singleton allOf (#5131) (f010d18)
- •core: preserve guarded final outputs in agent tools (#5115) (f3a15f6)
- •core: preserve structured guardrail diagnostics and agent output during persistence (#5016) (51bcea7)
- •core: preserve tool identity during asynchronous enablement (#5136) (f2ae64c)
- •core: redact default tool failure details (#5112) (40956e0)
openclaw 2026.8.34
2. Oktober 2026
- •Extended-stable correctness rollup: backport 113 audit-selected fix units across upgrades, Doctor, authentication, sessions, channels, plugins, sandboxing, filesystem safety, model runtimes, and release packaging.
- •Complete rescan: re-evaluate the full 2026.8.33 discovery range, large mixed-purpose pull requests, and the 2026.7.35 lineage instead of advancing only from the previous backport cursor.
- •Upgrade and recovery hardening: preserve credentials, agent state, plugin inventory, transcripts, schedules, service ownership, and runtime links through upgrades, restarts, and Doctor repair.
- •Boundary fixes: tighten remote filesystem mutation, plugin and skill scanning, browser authentication, channel reply identity, private skill ingress, and scoped runtime ownership.
- •Extended-stable release preparation: align OpenClaw, publishable plugins, native version metadata, generated channel catalogs, and npm package inventories to 2026.8.34.
- •Plugins: Recover orphan installs without weakening ownership.
- •Doctor: Repair keyed multi-agent rosters without ownership (#134706)
- •Prevent device pairing migration crash on contaminated records.
- •Doctor: Preserve per-agent memory search during upgrades.
- •Doctor: Detect shared auth migration by provenance (#134808)
- •Cron: Refuse stale doctor store rewrites.
- •Gateway: Refresh model catalog after auth changes (#134361)
- •Openai: Repair stale doctor route pins.
- •Auth: Verify shared credential migration receipts (#134952)
- •Cron: Keep model aliases scoped to the selected owner (#135069)
CLI v0.232.0, Desktop v0.189.0: Legacy model warnings, session sidebar sorting, faster MCP connections, plus Windows and Slack fixes
2. Oktober 2026
- •Improvements: Model discount labels - Model pickers now state a discounted model's savings as a plain percentage off
- •Improvements: Session sidebar sorting - Sort sessions by status so ones needing input come first, and let recently active groups rise (app)
- •Improvements: Legacy model warning - Picking an older model now warns you first and offers to switch to its newer version
- •Improvements: Faster MCP connections - MCP servers you reach over HTTP now connect faster when a session starts
- •Bug fixes: Windows command output - Commands Droid runs on Windows no longer write stray output into the terminal interface
- •Bug fixes: Rejected credential errors - A turn that stops because your model credentials were rejected now reports a credential failure
- •Bug fixes: Managed settings by region - Droid now reads organization-managed settings from your organization's own region
- •Bug fixes: Plugin marketplace removal - A plugin marketplace your organization or project provides can no longer be removed by hand
- •Bug fixes: Slack channel failures - Droid now tells you when a Slack channel you asked for could not be created
- •Bug fixes: Session transcript recovery - A session whose saved history holds an unusual line separator character now loads instead of failing
Sparse checkout explorer, unencrypted secret warnings, and native Windows CLI
2. Oktober 2026
- •Sparse checkout explorer navigation — the file explorer scopes directly to configured sparse checkout directories with compact breadcrumb navigation and an inline Back button, plus an interactive preset editor to browse repository folders or add custom paths as chips
- •Unencrypted credential warnings — Settings displays a warning banner when an API key or integration token is stored in plaintext on disk without keyring encryption, making secret exposure clear on headless and minimal environments
- •Native standalone Windows CLI — replaces the Windows orca launcher with a native binary statically linked to the C runtime, running cleanly without the Visual C++ Redistributable or false-positive antivirus warnings
Diesen Monat
0.160.0
1. Oktober 2026
- •Browse older tasks in the agent command center with a keyboard-accessible “Show more” action. (#49106)
- •Select transcript text and paste with middle-click in fullscreen mode on supported local Linux X11 terminals. (#49112)
- •Start sessions outside a project with workspace defaults when policy permits, and restore saved permissions when resuming. (#49160)
- •Added opt-in Guardian review capabilities to retrieve earlier user instructions and include context from agent handoffs. (#49036, #49057)
- •Unsent queued messages now resume after reconnection once uncertain submissions are resolved, avoiding duplicate sends. (#49105)
- •The terminal UI now preserves server provider, reasoning-summary, and verbosity settings and shows the correct sessions in resume and fork history. (#49144, #49161, #49171)
- •Fixed Windows sandbox PowerShell fallbacks and long-path permission repairs, and suppressed unwanted console windows from background helpers. (#49019, #49058, #49098, #49164, #49386)
- •Subagents now retain environments that are still starting and receive their configuration or preparation failure. (#49075)
- •Prevented SQLite stalls during connection setup and logging, and surfaced initialization errors instead of masking them as timeouts. (#49032, #49102)
- •Explicit provider model catalogs no longer include unsupported bundled models or reuse stale entries after refresh failures. (#49135)
- •Clarified how provider credentials use the configured storage backend and how
env_keyidentifies the API-key environment variable. (#49118) - •Reduced repeated plugin-loading work by caching parsed manifests and reusing HTTP connections for remote plugin requests. (#49099, #49100)
- •Added background reclamation of unused log database space to reduce disk usage. (#49069)
v0.3.287
1. Oktober 2026
- •Added optional remote-session latency fields (
first_text_post_queue_wait_ms,first_text_post_queued_behind) to the success result message - •Fixed
includePartialMessagesstreams sending a cut-short reply'smessage_stoplate or never, so apps could show the reply as still in progress - •Fixed the error for a revoked claude.ai login, which now reads "Failed to authenticate: OAuth token revoked" instead of a generic or "does not have access" message
- •Fixed a tool call to an in-process MCP server being left waiting after
toggleMcpServer()disabled the server orsetMcpServers()removed it - •Fixed
commands_changedarriving beforeinit, or twice, at session start: theinitializeresponse now includes commands registered at startup - •Changed
tool_use_resultfor a WebFetch or WebSearch call that steps aside for a priority "now" message to{ detachedToolCall: true }; the result follows in a later turn - •Changed
tool_use_resultfor MCP tools:structuredContentover 1,048,576 JSON characters is left off andstructuredContentOmitted: trueset, except for SDK-server and MCP Apps tools - •Updated to parity with Claude Code v2.1.287
CLI v0.231.0, Desktop v0.188.0: Transcript history paging, legacy models toggle, side chat shortcuts, template refresh, plus terminal and app fixes
1. Oktober 2026
- •Improvements: Side chat keyboard shortcuts - Side chat now takes multi-line messages and keeps its keys from acting on the main session (app)
- •Improvements: Compression progress spinner - A spinner now shows while a session's history compresses (app)
- •Improvements: Scheduled template refresh - Droid Computer templates now refresh on their own once they fall out of date
- •Improvements: Legacy models toggle - The model picker now groups older models under a legacy toggle and marks them clearly
- •Improvements: Faster first response - Droid now starts answering your first message sooner because setup work no longer blocks it
- •Improvements: Transcript history paging - Alt or Option with the arrow keys now pages a session's full saved history in the terminal
- •Bug fixes: Session settings at launch - Launching a session on a Droid Computer now keeps the model and settings you chose (app)
- •Bug fixes: Readable model errors - A model that cannot be served now reports it is temporarily unavailable instead of an empty error
- •Bug fixes: Workflow task identifiers - Droid Shield no longer flags a workflow task identifier in a commit as a secret
- •Bug fixes: Service account session privacy - Sessions you do not operate on a service account's computer stay out of your list and open read-only
- •Bug fixes: Starting local sessions - You can now start a local session without waiting for the template list to load (app)
- •Bug fixes: Questions written as text - A question Droid writes as raw markup now appears as a question you can answer
- •Bug fixes: Interrupted reply handling - A reply cut off mid-stream is now discarded instead of running unfinished tool calls
- •Bug fixes: Resumed session failures - A resumed session no longer fails when earlier reasoning cannot be reused
- •Bug fixes: Self-hosted host errors - Setting up a self-hosted GitHub or GitLab host now shows why its hostname failed to resolve
0.159.3
1. Oktober 2026
- •Eligible local sessions signed in with ChatGPT can now show optional reminders to complete account security setup. (#49744)
v1.18.34
1. Oktober 2026
- •Send namespaced session and parent-session identity headers with model requests.
- •Re-sign locally compiled macOS binaries so they run reliably on macOS 27+. (@ryangamerdev)
- •Sign macOS CLI release binaries with a Developer ID.
- •docs(web): correct GPT 6.1 Sol cache pricing (#52176)
- •@metal-huang:
- •fix(tui): use path.sep for plugin name extraction in /status dialog (#52328)
- •@ryangamerdev:
- •fix(opencode): ad-hoc re-sign darwin binaries after local compile (#52183)
v0.3.286
30. September 2026
- •Added the initialize response field
sdk_mcp_manifests_parkedand thesystem/initcapabilitiessdk_mcp_manifestsandsdk_mcp_tools_list_changed - •Fixed foreground subagents sometimes not receiving the task-tracking tools listed in
toolsorallowedTools - •Fixed an SDK MCP server listing no tools when one tool's schema cannot be converted to JSON Schema; that tool is now left out with a warning naming it
- •Fixed
toggleMcpServer()not disconnecting, and failing to re-enable, an in-process MCP server created withcreateSdkMcpServer(), except one namedclaude-in-chrome - •Changed a person's priority
nowmessage to move running shell commands, agents and MCP calls to the background and join the running turn instead of stopping it - •Changed the TypeScript Agent SDK to leave an omitted
permissionModeto Claude Code, so a settingsdefaultModenow applies and, on third-party providers or with telemetry off, the session starts in auto mode likeclaude -p; passpermissionMode: 'default'for manual approvals - •Updated to parity with Claude Code v2.1.286
Cline 4.1.22
30. September 2026
- •New providers: Bee (by HEOSSI) and Pareto Inference (
PARETO_API_KEY). - •Direct Anthropic requests now use Anthropic's server-side refusal fallback. On OpenRouter and Cline, Anthropic models can fail over to another upstream provider instead of failing the request.
- •When a response is blocked by a content filter, Cline now says so and suggests rephrasing, instead of "Model returned empty response".
- •Refreshed the model catalog. GPT-6.1 Sol becomes the default model for OpenAI, OpenRouter, GitHub Copilot, Cortecs, Eden AI, Kilo Gateway, both LLM Gateway providers, NanoGPT, OpenCode Zen, and Requesty. Vercel AI Gateway moves to Ling 3.1 Flash, Tempr Gateway to MiMo V2.6 Flash, CrossModel and Ofox to Claude Sonnet 5.5, Pioneer to GLiNER 2.5 Decide, and Scaleway to Qwen 3.8 27B. The Cline recommended list adds Claude Sonnet 5.5 and Claude Opus 5.5. If you use one of those providers without pinning a model, expect a different default.
- •After an API error you can type and send a new message instead of only using Retry. A
/compact(or/smol,/newtask) typed during recovery stays in the composer instead of being sent to the model as text. - •If a new task fails Cline sign-in, signing in and submitting a revised prompt now starts the task with that prompt. Before, nothing happened.
- •Reset Code is now disabled when a message has no checkpoint, and no longer stays disabled for a message whose checkpoint exists (seen on slow disks). Changing the Checkpoints setting now applies to the active task, and follow-up messages typed while it applies are kept in order.
- •Canceling right after sending a message now stops the task. A cancel that landed while the turn was still being set up was ignored, and the task kept running.
- •Reasoning tokens are no longer counted twice in token usage. Cost is unchanged.
- •Amazon Bedrock: GPT-6 and GPT-5.6 route through inference profiles, and India regions (
ap-south-1,ap-south-2) resolve thein.profile. OpenAI models behind inference profiles get the reasoning effort setting they support. Nova 2 Lite with high reasoning, application inference-profile ARNs, and Nova Micro no longer get requests Bedrock rejects. A legacy AWS profile setting saved without the "use profile" flag now carries over as profile authentication instead of being dropped. - •Gateway models on providers that mix endpoints keep their own API protocol instead of falling back to the provider-wide default.
CLI v0.230.0, Desktop v0.187.0: Attached images kept across turns, faster Windows startup, plus session, Slack, and API fixes
30. September 2026
- •Improvements: Session artifact actions - Session records now report viewed, updated, closed, and merged pull requests and issues, not only created ones
- •Improvements: Enterprise command lists - Custom blocked commands collapse behind a count, and long command lists scroll in place
- •Improvements: Faster Windows startup - Droid starts faster on Windows by skipping a redundant console setup step
- •Bug fixes: Startup with many sessions - Droid no longer freezes at startup on machines that hold thousands of sessions
- •Bug fixes: Pending questions across restarts - A question Droid is waiting on now survives a restart, so you can still answer it
- •Bug fixes: Session message order - A session now lists its messages in the order they happened
- •Bug fixes: Task reports after hooks - A background task now reports its full result even when a hook ran during the turn
- •Bug fixes: Faster reply after connection failure - Droid now starts its reply immediately instead of waiting out a retry delay after a failed connection
- •Bug fixes: Parallel tool results with images - A turn where parallel tools return images or documents no longer fails with some models
- •Bug fixes: Slack channel lists - Slack channel lists now show only real channels, not the conversations behind Droid sessions
- •Bug fixes: Images attached in earlier turns - Sending a message no longer deletes the images you attached in earlier turns
- •Bug fixes: File path chip size - A file path in a Droid message now matches the height of nearby inline code
- •Bug fixes: Image input for GLM-5.3-Flash - An image you attach now reaches the model instead of being dropped
Isolated Codex terminals, DeepSeek and Qoder harnesses, and SSH multi-factor authentication
30. September 2026
- •Isolated Codex terminals and server toggle — each Codex terminal tab runs on its own background server by default so closing or stopping one session never affects others, with a new toggle in Settings → Agents to switch back to Codex's shared server if preferred
- •DeepSeek, Qoder, Freebuff, and CodeBuddy harnesses — launch DeepSeek Harness (dsh), Qoder CLI, Freebuff, and CodeBuddy as first-class agents with live sidebar status tracking, plus ZCode session history in AI Vault and quota tracking in Usage
- •SSH keyboard-interactive MFA — connect to remote SSH hosts requiring multi-factor authentication, one-time passwords, or interactive verification prompts
0.159.2
30. September 2026
- •Suppressed console windows flashing on Windows when Codex launches background processes and sandboxed commands. (#49385)
Release v0.62.0
29. September 2026
- •fix(a2a-server): add early return on unsupported store in tasks metadata endpoint by @jesussamuel-byte in https://github.com/google-gemini/gemini-cli/pull/29334
- •Changelog for v0.61.0-preview.0 by @gemini-cli-robot in https://github.com/google-gemini/gemini-cli/pull/29344
- •Changelog for v0.60.0 by @gemini-cli-robot in https://github.com/google-gemini/gemini-cli/pull/29345
- •fix(core,acp): format MCP tool call titles as structured signatures and segregate explanations by @jvargassanchez-dot in https://github.com/google-gemini/gemini-cli/pull/29341
- •chore(release): bump version to 0.62.0-nightly.20260915.gae28844fb by @gemini-cli-robot in https://github.com/google-gemini/gemini-cli/pull/29346
- •fix(core): retain oauth refresh token on refresh and make credential deletion idempotent by @villahernandez-coder in https://github.com/google-gemini/gemini-cli/pull/29339
- •fix(ui): guard against negative layout dimensions in border rendering by @diegogodinezr in https://github.com/google-gemini/gemini-cli/pull/29347
- •test(integration): deflake run_shell_command and file-system-interactive tests by @DavidAPierce in https://github.com/google-gemini/gemini-cli/pull/29185
- •fix(core): improve PTY file descriptor cleanup and execution lifecycle management by @jesussamuel-byte in https://github.com/google-gemini/gemini-cli/pull/29340
- •chore/release: bump version to 0.62.0-nightly.20260918.g9450ade79 by @gemini-cli-robot in https://github.com/google-gemini/gemini-cli/pull/29383
- •fix(core): synchronize ConPTY process exit lifecycle and harden PTY output finalization by @jvargassanchez-dot in https://github.com/google-gemini/gemini-cli/pull/29379
- •fix(cli): suppress uncaught AbortError logs during request cancellation by @urielefrenvirtusa in https://github.com/google-gemini/gemini-cli/pull/29343
- •fix(core,cli): improve terminal buffer memory management and format Windows diagnostic paths by @jesussamuel-byte in https://github.com/google-gemini/gemini-cli/pull/29380
- •fix(vscode-ide-companion): preserve terminal focus when closing diff tabs by @amelidev in https://github.com/google-gemini/gemini-cli/pull/29378
- •fix(core): update auth error documentation link to valid anchor and add fallback (#26140) by @villahernandez-coder in https://github.com/google-gemini/gemini-cli/pull/29377
0.159.1
29. September 2026
- •Added GPT-6.1 Sol as the default model in the bundled catalog and Amazon Bedrock Mantle and Runtime catalogs. (#49323, #49342)
Häufig gestellte Fragen zum Changelog Hub
Antworten auf die wichtigsten Fragen zu unserem KI-Tools Changelog Hub
Changelog
FAQ und Changelog hinzugefügt
- FAQ-Bereich mit häufig gestellten Fragen zum Changelog Hub
- Changelog-Sektion für Hub-Updates
- Verbesserte Strukturierung der Seite
Erweiterte Changelog-Anzeige
- Komplette Changelog-Historie statt nur 6 Einträge
- Expand/Collapse für lange Changelog-Einträge
- Header und Footer auf allen Changelog-Seiten
- Fehlerbehebungen für mehrere Tool-Changelogs und Detailseiten
Initialer Launch
- Changelog Hub mit kuratierter Tool-Auswahl
- GitHub Releases API Integration
- Offizielle Release- und Changelog-Quellen für mehrere Tools
- Automatische deutsche Übersetzung mit GPT-5-nano
- Timeline- und Gruppiert-Ansicht
- Suche und Filter nach Tool, Breaking Changes, Major Releases
- RSS Feed für alle Tools
- Redis Caching für optimale Performance